Aspen Policy Academy

Bug Bounty Programs

A toolkit for enhancing agency preparedness for bug bounty program execution

Bug Bounty Programs (BBPs) are an efficient and cost-effective way to improve a system’s security, allowing for scrutiny by a broader array of cybersecurity experts than a typical government agency could normally provide. Yet, few agency system stakeholders understand the advantages of BBPs or are prepared to execute BBPs on their own systems. This project outlines how the Cybersecurity and Infrastructure Security Agency could scale the use of BBPs across government by helping agencies: improve their understanding of BBPs; gauge their specific agency’s readiness to execute a BBP; and prepare to execute a BBP.

Browse Related Projects

Tech

A shot of a sloping hill covered in buildings and trees.

Data-Sharing to Increase Young Mothers’ Benefits Enrollment in Central California

By Anna Banchik, Renata Bartlett, Nolan Green, Dorin Horsfall, Lee Howard, and Kash Sridhar

Tech

An image of the pastel colored "Painted Ladies" Victorian building in San Francisco.

Supporting Medi-Cal Recipients by Screening for Employment Eligibility in San Francisco

By I-Chiang Chen, Melinda Bernardo Cuerda, Kate Fisher, Carolyn Rojsutivat, and Emanuel Schorsch

Tech

Image of a pink apartment building in San Francisco.

Digitizing the JobsNOW! Intake Process for Medi-Cal Clients in San Francisco

By Susie Forbath, Tim Lillis, Cedar Louis, Jud Neer, and Anthony Vasquez